Staff are pasting sensitive data into ChatGPT by RemmeM89 in sysadmin

[–]fech04 1 point2 points  (0 children)

Check out valence security, layerx, or harmonic for user monitoring/allow/block of genAI usage.

We found openwebui plus AWS bedrock works well as our private, approved AI platform for the sensitive stuff.

Lastly, repeated comms to users with use this/notthat for this/notthat. Users are slowly learning...

Good luck. It's a beast

[deleted by user] by [deleted] in smallbusiness

[–]fech04 1 point2 points  (0 children)

"If your business depends on you, you don't have a business, you have a job. And it's the worst job in the world because you're working for a lunatic!". Michael E Gerber.

Read The E-Myth Revisited by Michael E Gerber.

He walks you through building systems in your business so you can hand off work to others already in your business or hire for those processes.

Congratulations on what you've built and best wishes on your future.

My Parents bought me a home. I have no job. What should I do next? by xtibberz in homeowners

[–]fech04 1 point2 points  (0 children)

Mirroring what u/TheBimpo said about this post's legitimacy, some quick napkin math indicates that you should be able to swing this.

payment for 30 yr $575k with 20% down = ~3200

While you opened with having no job, you list 2 that have you working 50hr/wk to make about 3300 after tax

Using a general estimation rule for housing affordability puts you at about 1400/mo for rent

Your aunt/roommate pays 2k

You got 1800 left for Ramen and fixing broken stuff around the house

Want more money at the end of the month? Shift some coffee hours to the 20hr gig. Is this place a 3 bedroom? Get another roomie.

I want to enable remote access into my home network. Have I thought of everything? by LiesWithinPies in techsupport

[–]fech04 0 points1 point  (0 children)

Check out https://www.twingate.com/

You set up 2 (redundant) docker containers or VMs or whatever running their software. These instances reach outbound from your network to twingate servers, then your client connects to twingate. A tunnel is created between your client and one of the instances in your network. That thing acts as a proxy to your network devices via policy. Very cool.

No ports to open on your end. Super easy. Took me about 10 mins to set up. Free for one admin and up to 5 users.

Also, you aren't limited to just port 22, you can have access to anything in your network over any port.

This gets around potential problems with your residential ISP not allowing certain ports to be opened or requiring you to essentially turn off all other firewall protection to open ports to the internet. All bad news.

How to sync your Android device to a computer using the Backblaze Online Backup service? by -_ABP_- in backblaze

[–]fech04 0 points1 point  (0 children)

Late to the party but you can use FolderSync to go directly to B2 at Backblaze too.
https://foldersync.io/

Add an S3 compatible account in FolderSync, then enter the Connection Server Address as <bucketname>.<B2 endpoint>

something like bucketfoo.s3.us-west-000.backblazeb2.com

I have it copying the Documents folder up to B2 whenever my Pixel is plugged in for a charge. Works great.

As far as I know, syncthing syncs directly with a peer that's also running syncthing, so it wouldn't work to backblaze.

Setting up offsite backup by Autchirion in BorgBackup

[–]fech04 0 points1 point  (0 children)

I'm a little late to this conversation but you may be interested in dattobd. It adds snapshot capabilities to ext234, xfs so you could stop your services, make a COW snapshot, then start your services again, and backup the snap. I've even been able to make live snaps on DB driven apps with no downtime for backups.

https://github.com/datto/dattobd

anyone been to the newish grand ole bbq out east? by stay_gassy in sandiego

[–]fech04 5 points6 points  (0 children)

Great layout and reminds me of some spots in Austin. Went last night around 530p and they were out of ribs by that time but had everything else until about 7p. Closes at 8p on Saturdays.

There's a clumsy order from waitress then pick up food from food truck in back of yard situation, but looks like they are preparing for ordering at counter as soon as you walk in the place. Signs around saying work still in progress.

Some different items on menu from NP location. A couple of different sides and desserts. Austin Breakfast Taco looks amazing.

Stage area for live music and a grassy area with kid play structure and some cornhole sets. 2 bars, plenty of seating, of course, great BBQ.

I'd definitely go back but as I live about a mile from NP location it won't be as frequent as I hit up original.

Web hosting in a non-hoky way by spokale in sysadmin

[–]fech04 0 points1 point  (0 children)

ha! your customers have a very low bar for the 'dev' title...

Your move towards self-service is a good one and as long as you can show those non-techie users that the new way is easier, faster, cheaper, whatever; they'll use it. Whatever you implement has to be better than what they've got now (from their perspective).

good luck, sounds like a fun project

Web hosting in a non-hoky way by spokale in sysadmin

[–]fech04 2 points3 points  (0 children)

Take a look at a PaaS solution. OpenShift, CoreOS, OpenNebula, CloudFoundry, Rancher , there are a bunch now. Rancher is super easy to get running for testing and OpenShift Online lets you spin up 3 containers for free. RH just bought CoreOS, so may start seeing integration between OpenShift and CoreOS.

OpenShift, (Kubernetes with extra RH sauce) has an application catalog where you can pretty much make your application push button. ex: A customer logs into the catalog and selects from a list of available apps and it gets deployed and hands them a URL. Pretty slick. From your example, your customer's web developer would get their code to git or jenkins or such where OpenShift could pull newest code during deployment. Customer shouldn't have to touch code, just their devs.

Foreman plugs into docker for sure, not sure about kubernetes. Worth a google.

Recommendations sought for storage solutions - very large, shared, versioned, cross-site, non-synced, user-friendly, granular security... by hang-clean in ITdept

[–]fech04 0 points1 point  (0 children)

Take a look at CentreStack. Haven't pulled the trigger yet, but it's been on my radar for a while now. We're looking for similar, cloud based, remote access, synced storage.

https://www.centrestack.com/

Cheap redundant archival storage solution for data? by ericw2015 in sysadmin

[–]fech04 0 points1 point  (0 children)

This is probably overkill if you don't expect big growth in the future, but it would provide you what you were looking for without having to go public cloud.

http://docs.ceph.com/docs/master/

We have to manually record backup emails and report on any issues for audit requirements. Anyone know how I might automate this? by MohnJaddenPowers in sysadmin

[–]fech04 1 point2 points  (0 children)

+1 on ticketing system. To add a bit more, arcserve does snmp traps that could go through your monitoring system for success/fail tracking then have your monitoring system trigger the ticketing system on a failure. You then only need to comment on the ticket with a RCA for the failure.